OPNsense Forum

English Forums => General Discussion => Topic started by: madj42 on November 03, 2019, 03:36:48 pm

Title: Opnsense.org times out
Post by: madj42 on November 03, 2019, 03:36:48 pm
Last week I switched from Unifi to Opnsense.  I've been able to replicate my setup now over to Opnsense.  My only issue is that for whatever reason I am unable to access opnsense.org and docs.opnsense.org from behind the firewall.  I've verified that is not the firewall, tried setting MSS using the normalization feature, and verified it's not the IPS by turning it off.  The weird thing is that these forums work and they are at the same IP.  My internet connection is over CenturyLink PPOE.  I have one interface for the WAN IPv4 setup and a GIF tunnel for the IPv6 RD setup.  I also have a IPSec road warrior VPN setup which has the MSS normalization setting set to 1300 for that entire interface and these sites work.  That's what led me to believe it was MTU/MSS but setting the normalization for just the sites IP on the WAN interface does not work the same.

This has been the last remaining issue and I've been looking at it the past week trying to figure it out.  Any help would be appreciated.  Thank you.
Title: Re: Opnsense.org times out
Post by: madj42 on November 03, 2019, 04:02:43 pm
I think I figured this out.  The IPv6 tunnel I had setup with my ISP needed a lower MSS clamping value.  The VPN worked only because it was IPv4 only.